Re: [ogpx] Protocol for permitting policy decisions

Carlo Wood <carlo@alinoe.com> Tue, 06 October 2009 11:16 UTC

Return-Path: <carlo@alinoe.com>
X-Original-To: ogpx@core3.amsl.com
Delivered-To: ogpx@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id C6E123A6ABE for <ogpx@core3.amsl.com>; Tue, 6 Oct 2009 04:16:30 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.198
X-Spam-Level:
X-Spam-Status: No, score=-1.198 tagged_above=-999 required=5 tests=[AWL=0.232, BAYES_00=-2.599, HELO_EQ_AT=0.424, HOST_EQ_AT=0.745]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id i6MN+m6SVSea for <ogpx@core3.amsl.com>; Tue, 6 Oct 2009 04:16:30 -0700 (PDT)
Received: from viefep16-int.chello.at (viefep16-int.chello.at [62.179.121.36]) by core3.amsl.com (Postfix) with ESMTP id 8F64B3A6ABC for <ogpx@ietf.org>; Tue, 6 Oct 2009 04:16:29 -0700 (PDT)
Received: from edge01.upc.biz ([192.168.13.236]) by viefep16-int.chello.at (InterMail vM.7.09.01.00 201-2219-108-20080618) with ESMTP id <20091006111804.WHAE422.viefep16-int.chello.at@edge01.upc.biz>; Tue, 6 Oct 2009 13:18:04 +0200
Received: from mail9.alinoe.com ([77.250.43.12]) by edge01.upc.biz with edge id pPJ21c05T0FlQed01PJ3lo; Tue, 06 Oct 2009 13:18:04 +0200
X-SourceIP: 77.250.43.12
Received: from carlo by mail9.alinoe.com with local (Exim 4.69) (envelope-from <carlo@alinoe.com>) id 1Mv84d-0001nI-H4; Tue, 06 Oct 2009 13:19:19 +0200
Date: Tue, 6 Oct 2009 13:19:19 +0200
From: Carlo Wood <carlo@alinoe.com>
To: Meadhbh Siobhan <meadhbh.siobhan@gmail.com>
Message-ID: <20091006111919.GB32650@alinoe.com>
References: <983F17705339E24699AA251B458249B50CC48CAEBF@EXCHANGE2K7.office.nic.se> <4646639E08F58B42836FAC24C94624DD771A0D8521@GVW0433EXB.americas.hpqcorp.net> <b8ef0a220910050932m4afb62eh1221cbb377695093@mail.gmail.com>
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
In-Reply-To: <b8ef0a220910050932m4afb62eh1221cbb377695093@mail.gmail.com>
User-Agent: Mutt/1.5.18 (2008-05-17)
Cc: "ogpx@ietf.org" <ogpx@ietf.org>, Magnus Zeisig <magnus.zeisig@iis.se>
Subject: Re: [ogpx] Protocol for permitting policy decisions
X-BeenThere: ogpx@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Virtual Worlds and the Open Grid Protocol <ogpx.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/ogpx>, <mailto:ogpx-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ogpx>
List-Post: <mailto:ogpx@ietf.org>
List-Help: <mailto:ogpx-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ogpx>, <mailto:ogpx-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 06 Oct 2009 11:16:30 -0000

On Mon, Oct 05, 2009 at 09:32:34AM -0700, Meadhbh Siobhan wrote:
> again, this is a matter of policy, not a matter of protocol.
> 
> let me give you a counter example. [...snip...]

> so the answer to the question of "what does the protocol have to do?"
> is that it only has to convey information about the identity of the
> agent domain to the region provider. it also has to have a mechanism
> for the agent domain to identify the region.
> 
> but the protocol itself does not impose restrictions as to the
> identity of either party. that is a policy issue.

Correct me if I'm wrong, but you are saying that every AD needs
to add a configuration for each region that is serves to know
what to do when a given user wants to TP to that region?

And the protocol does not provide a way for the RD to change that
configuration.

That sounds like a can of worms in terms of administration horrors.
It's not flexible at all, it would make it very labour intensive
to add a new AD to some RD, or for an RD to switch to a different
AD. 'Trust' wouldn't be enough anymore.

Imho, we MUST PUT THE MEANS OF (RE)CONFIGURATION OF REGION DOMAIN
POLICIES IN THE HANDS OF THE REGION DOMAIN! Let them change it
daily, and immediately, if they wish.

-- 
Carlo Wood <carlo@alinoe.com>